Cyber Metadata · Split Routing Diagnosis

Split Egress Diagnosis

Compare the egress IP seen by multiple regional targets from the same browser, and check whether WebRTC exposes another public address.

Waiting

HTTP Egress Observations

Not checked yet
TargetEgress IPASN / CountryPath / TypeVerdict
After starting the diagnosis, the exits seen by each target will appear here.

Egress Groups

No data

After diagnosis, targets are grouped by egress IP / ASN / country. Targets in the same group used the same exit.

WebRTC Leak Check

Waiting

After starting diagnosis, local IP and STUN-mapped addresses are compared with the HTTP exit to judge VPN leaks.

Want the full diagnosis?

This is a single check. Run the deep check to cover split egress, DNS/WebRTC leaks, VPN/proxy detection, AI/streaming reachability, and speed in one pass.

Run the deep check →

分流与出口检测——你的代理 / VPN 是否对所有目标都生效,还是部分流量「裸奔」直连?这个检测用多区域回显实测你访问不同目标时的真实出口 IP,判断分流拓扑并识别真实 IP 泄漏。

什么是分流(split routing)

规则代理(Clash / Surge / 等)按规则决定哪些流量走代理、哪些直连——国内站点直连求快、国外走代理。好处明显,但风险是:规则配错或某些目标走了直连,会把你的真实 IP 暴露给那个目标。

这个工具怎么检测

它让你的浏览器向多个区域的目标发起请求,由我们的回显端点记录每个目标实际看到的你的出口 IP,再按网络类型分类、推断拓扑:

分流泄漏有什么风险

如何修复

常见问题

分流泄漏和 DNS 泄漏是一回事吗?

不是。分流泄漏是你的部分流量直连暴露了真实出口 IP;DNS 泄漏是域名解析这一步绕过隧道。可独立发生,建议都查——DNS 泄漏检测

想一次看全出口、泄漏、纯净度?

运行完整深度检测,一次跑完出口汇总、DNS / WebRTC 泄漏、VPN / 代理识别、AI 可达性与测速。

Split routing & exit check — does your proxy / VPN apply to every destination, or does some traffic go "bare" (direct)? This check uses multi-region echo to measure your real exit IP toward different targets, infers the routing topology, and identifies real-IP leaks.

What is split routing

Rule-based proxies (Clash / Surge / etc.) decide per rule which traffic goes through the proxy and which goes direct — domestic sites direct for speed, foreign sites via the proxy. Useful, but the risk is: a misconfigured rule or a destination that goes direct exposes your real IP to that target.

How this tool detects it

It makes your browser request targets in several regions, has our echo endpoints record the exit IP each target actually sees, then classifies and infers the topology:

Risks of a split-routing leak

How to fix

FAQ

Is a split-routing leak the same as a DNS leak?

No. A split-routing leak is some of your traffic going direct and exposing your real exit IP; a DNS leak is the name-resolution step bypassing the tunnel. They are independent — check both with the DNS leak test.

Want exits, leaks, and cleanliness in one pass?

Run the full deep check — exit summary, DNS / WebRTC leaks, VPN / proxy detection, AI reachability, and speed in one go.

VPN Split-Tunnel & Exit IP Check — Multi-Region Real Egress | Cyber Metadata